Malware

About “Malware.AI.746529171” infection

Malware Removal

The Malware.AI.746529171 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.746529171 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.746529171?


File Info:

name: 959BBA0413C03C0FB198.mlw
path: /opt/CAPEv2/storage/binaries/f2138d7c8797aadc38089a45db0129ced168b193d9ef7b43ca114efef0aa037f
crc32: D410BFC1
md5: 959bba0413c03c0fb198038fbd22ca5a
sha1: 6089f8ef1ff3781e683e02502f4f2ddc613fde9a
sha256: f2138d7c8797aadc38089a45db0129ced168b193d9ef7b43ca114efef0aa037f
sha512: 0ed5341433f5588235823dda269d3bf8599668dae295c540d76cdcae642e3137d55cb741391725712c182595e3f33ceff095fd2f191bfc67833cee6712a0492c
ssdeep: 196608:i6w/LA+2gJqwKFI3en42njINTUE0wL8P1zUDPciJp3d:i6KACJqwvrNdLC1YfJL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11896336312721185D5D2CC3D453BBDD2B1B61357898FA8791AEEADC02F216F9E306B83
sha3_384: d60d5aad63aae027795ee757dd83009da9e6bc2c0246e66d78e16cfca664a6fef9c94844cad7fe2a75192aea0d353a44
ep_bytes: e8a45d0a00ff7424149d8d642418e8b5
timestamp: 2012-07-13 22:47:16

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Xqmo Spoofer
FileVersion: 1.0.0.0
InternalName: Xqmo Spoofer.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: Xqmo Spoofer.exe
ProductName: Xqmo Spoofer
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.746529171 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.GM.0800520080
CAT-QuickHealTrojan.Sabsik
McAfeeArtemis!959BBA0413C0
Cylanceunsafe
VIPREGen:Trojan.Heur.GM.0800520080
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0059f3ce1 )
AlibabaPacked:Win32/VMProtect.7fb6de79
K7GWTrojan ( 0059f3ce1 )
Cybereasonmalicious.413c03
BitDefenderThetaAI:Packer.B4DCC8531D
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Packed.VMProtect.AU suspicious
APEXMalicious
Paloaltogeneric.ml
BitDefenderGen:Trojan.Heur.GM.0800520080
ViRobotTrojan.Win.Z.Wacapew.9064448
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Trojan.Heur.GM.0800520080 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.959bba0413c03c0f
SophosGeneric Reputation PUA (PUA)
Antiy-AVLTrojan[Packed]/Win32.VMProtect
MicrosoftProgram:Win32/Wacapew.C!ml
ArcabitTrojan.Heur.GM.D2FB6F790
GDataGen:Trojan.Heur.GM.0800520080
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Heur.C5394911
Acronissuspicious
ALYacGen:Trojan.Heur.GM.0800520080
MAXmalware (ai score=88)
MalwarebytesMalware.AI.746529171
TrendMicro-HouseCallTROJ_GEN.R002H09E223
RisingTrojan.Generic@AI.100 (RDML:p9MWKlMhFUSI4ejJAVwkHA)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Application
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.746529171?

Malware.AI.746529171 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment